Settings on MikroTik:
DHCP serverIn this configuration, websites don't work. After disabling NAT rules, everything works flawlessly. There seems to be an issue with forwarding. Does anyone have any idea?
DHCP server
Code:
DHCP server# ADDRESS GATEWAY DNS-SERVER 0 192.168.1.0/24 192.168.1.1 192.168.1.1DNS servers: dynamic-servers: use-doh-server: https://1.1.1.1/dns-query verify-doh-cert: yes doh-max-server-connections: 5 doh-max-concurrent-queries: 50 doh-timeout: 5s allow-remote-requests: yes max-udp-packet-size: 4096 query-server-timeout: 2s query-total-timeout: 10s max-concurrent-queries: 100 max-concurrent-tcp-sessions: 20 cache-size: 2048KiB cache-max-ttl: 1w address-list-extra-time: 0s cache-used: 99KiBNAT1 ;;; Redirect DNS to AdGuard (UDP) chain=dstnat action=dst-nat to-addresses=192.168.1.254 to-ports=53 protocol=udp src-address=!192.168.1.254 dst-port=53 log=no log-prefix="" 2 ;;; Redirect DNS to AdGuard (TCP) chain=dstnat action=dst-nat to-addresses=192.168.1.254 to-ports=53 protocol=tcp src-address=!192.168.1.254 dst-port=53 log=no log-prefix="" Script:local adguardIP "192.168.1.254":local isAdguardAlive [/ping $adguardIP count=3]:if ($isAdguardAlive = 0) do={ :log info "AdGuard Home is down, disabling DNS redirection NAT rules." /ip firewall nat set [find comment="Redirect DNS to AdGuard"] disabled=yes} else={ :log info "AdGuard Home is up, enabling DNS redirection NAT rules." /ip firewall nat set [find comment="Redirect DNS to AdGuard"] disabled=no}
Statistics: Posted by nocc — Sun Feb 11, 2024 4:44 pm